Skip to content

Commit 1dc849a

Browse files
committedJul 15, 2024
Fixes #443 for v5
1 parent 632165f commit 1dc849a

File tree

5 files changed

+13
-4
lines changed

5 files changed

+13
-4
lines changed
 

‎node/CHANGELOG.md

+6
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,11 @@
11
# Changelog
22

3+
## [5.1.2]
4+
5+
### Bugfix
6+
7+
- JSON format should not include results without vulnerabilities unless `--verbose` is specified.
8+
39
## [5.1.1]
410

511
### Bugfix

‎node/lib/retire.js

+1-1
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@
44
*/
55

66
var exports = exports || {};
7-
exports.version = '5.1.1';
7+
exports.version = '5.1.2';
88

99
function isDefined(o) {
1010
return typeof o !== 'undefined';

‎node/package-lock.json

+2-2
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

‎node/package.json

+1-1
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
"author": "Erlend Oftedal <erlend@oftedal.no>",
33
"name": "retire",
44
"description": "Retire is a tool for detecting use of vulnerable libraries",
5-
"version": "5.1.1",
5+
"version": "5.1.2",
66
"license": "Apache-2.0",
77
"repository": {
88
"type": "git",

‎node/src/reporters/json.ts

+3
Original file line numberDiff line numberDiff line change
@@ -23,6 +23,9 @@ export default {
2323
};
2424
logger.warn = logger.error = (message) => finalResults.errors.push(message);
2525
logger.logVulnerableDependency = (finding) => {
26+
if (!config.verbose) {
27+
finding.results = finding.results.filter((r) => retire.isVulnerable([r]));
28+
}
2629
finalResults.data.push(finding);
2730
};
2831
logger.logDependency = function (finding) {

0 commit comments

Comments
 (0)
Failed to load comments.